Skip to content
NIST CSF 2.0 · Feb 2024

NIST Cybersecurity Framework 2.0

Interactive implementation checklist for NIST CSF 2.0. Six functions with all categories and subcategories. Track your maturity — progress saved in your browser.

GV Govern

ID Identify

PR Protect

DE Detect

RS Respond

RC Recover

0%0/106 controls implemented
GV — Govern: 0/31
ID — Identify: 0/21
PR — Protect: 0/22
DE — Detect: 0/11
RS — Respond: 0/13
RC — Recover: 0/8

Frequently Asked Questions

What is NIST CSF 2.0?

The 2024 update to the NIST Cybersecurity Framework, a voluntary framework for managing cybersecurity risk applicable to organisations of any size or sector.

What changed from NIST CSF 1.1 to 2.0?

CSF 2.0 added a sixth function, GOVERN, covering organisational context, risk strategy and oversight, and broadened scope beyond critical infrastructure to all organisations.

What are the six functions of NIST CSF 2.0?

GOVERN, IDENTIFY, PROTECT, DETECT, RESPOND and RECOVER.

Is NIST CSF a certification?

No — unlike ISO 27001, there is no formal NIST CSF certification; organisations self-assess maturity and tiers against the framework's categories and subcategories.